Operation Manual - Security
Quidway S3000 Series Ethernet Switches
Chapter 1 802.1x Configuration
1-4
The Main 802.1x configuration includes:
z
Enable/Disable 802.1x
z
Set the port access control mode
z
Set port access control method
z
Check the users that log on the switch via proxy
z
Set maximum number of users via each port
z
Set to enable DHCP to launch authentication
z
configure authentication method for 802.1x user
z
Set the Maximum times of authentication request message retransmission
z
Set the handshake period of 802.1x
z
Configure timers
z
Enable/Disable quiet-period Timer
Among the above tasks, the first one is compulsory, otherwise 802.1x will not take any
effect. The other tasks are optional. You can perform the configurations at
requirements.
1.2.1 Enable/Disable 802.1x
The following commands can be used to enable/disable the 802.1x on the specified
port. When no port is specified in system view, the 802.1x is enabled/disabled globally.
Perform the following configurations in system view or Ethernet port view.
Table 1-1
Enable/Disable 802.1x
Operation
Command
Enable the 802.1x
dot1x
[
interface
interface-list
]
Disable the 802.1x
undo
dot1x
[
interface
interface-list
]
User can configure 802.1x on individual port, but it is not enabled yet. The configuration
will take effect right after 802.1x is enabled globally.
By default, 802.1x authentication has not been enabled globally and on any port.
1.2.2 Set the Port Access Control Mode.
The following commands can be used for setting 802.1x access control mode on the
specified port. When no port is specified, the access control mode of all ports is
configured.
Perform the following configurations in system view or Ethernet port view.